London, United Kingdom Posted on 24/02/2025 Job Description: SecurityTesting Engineer Location: Remote with occasional travel as required Employment Type: Permanent About the Role Scrumconnect Consulting is looking for a SecurityTesting Engineer to ensure the security, resilience, and compliance of … GOV.UK digital services . This role involves identifying vulnerabilities, mitigating security risks, and ensuring adherence to government security policies and DDAT frameworks . You will work closely with developers, security architects, and business stakeholders to embed securitytesting into Agile development workflows and DevSecOps pipelines. … As a SecurityTesting Engineer , you will conduct static and dynamic security assessments, penetration testing, and vulnerability analysis , ensuring that applications meet the highest security standards. Key Responsibilities 1. Security Test Planning & Execution Develop, implement, and execute comprehensive security test plans for GOV.UK More ❯
and validated by science and data. Superpowered by creativity and design. All underpinned by technology created with purpose. YOUR ROLE The Invent Digital Trust & Security (DT&S) practice focuses on ensuring secure business outcomes for our clients, providing Cybersecurity advisory and transformation consulting in areas such as security strategy, risk management, human risk management, data and identity security, secure intelligent industry, Gen-AI risk, and security operations modernisation. Our security specialists and innovators enable our clients to evaluate cyber risks, redesign Cybersecurity operating models, modernise digital identity capabilities, lead programmes to drive security culture change, and transform security and compliance regimes to make them efficient, effective, sustainable, and resilient. For this role, we are looking for individuals with experience in Cybersecurity to help embed security culture and practices. We continuously recruit across a range of experienced hire grades for our More ❯
Manchester, North West, United Kingdom Hybrid / WFH Options
Secure Recruitment Ltd
SOFTWARE APPLICATION SECURITY ENGINEER £90,000 + 15% Bonus + Excellent Staff Benefits including Strong Pension, Life Assurance Hybrid Working ( 2 Days per Week Onsite ) An interesting opportunity has presented itself within one of the UKs largest Independent Software Based Organisations who are one of a major driving forces … behind Innovative Development of Enterprise-Led Internet Technology. They are now looking for an Application Security Engineer to join their existing & high performing In - House Security Team of 35 Staff including SOC & Cyber Analysts through to Experienced Cyber Security Engineers & Security Architects. As an AppSec Engineer … you will focus on the technical side of IT Security, specifically looking at Application Security & Code Analysis, ensuring their Applications are Built Securely. The Information & Cyber Security Team deal with the Security of Closed-Sourced, Open-Source & In-House Developed Applications ensuring that All Systems & Services More ❯
an experienced Quality Assurance Lead who is passionate about our mission and capable of supporting our rapid growth. You will be leading the Software Testing function within the Engineering team, you will lead a small team of QA testers and you will have the opportunity to ensure the Quality … of our Product by hands-on testing while leading by example. About MediShout The world's first platform aggregating all operational departments and suppliers in hospitals Staff at over 100 Hospitals reporting their operational issues using our apps or QR codes Working with global medical device companies and facilities … and experienced QA Lead to build and lead our growing QA team. This hands-on role involves leading by example in manual and automated testing (using Cypress), mentoring QA engineers, and shaping the QA function from the ground up within our dynamic startup. You will be reporting to the More ❯
and commercial applications. We are trusted by our customers to protect their mission-critical information in the face of advanced persistent threats. Our offensive security engineers emulate these real-world threats and provide critical signal on attack vectors to help improve our security posture. This role will be … hands-on and requires a deep understanding of micro-service architecture, multi-tenancy vulnerabilities, cloud security, and web application security. In this role you'll dive deep into the security of our products and more: Conduct security assessments. You'll learn how our products work at the … then try to break them. This includes everything in our current and future product and service portfolio from Apollo to Foundry. You'll document security findings and work with AppSec and product engineers to develop mitigations. Build offensive testing tooling and automation. Scale offensive securitytestingMore ❯
UK based, primarily remote working with some travel required to our London Office. Sponsorship is not available for this role. What you will do: Security Integration in CI/CD Pipelines: Implement security controls within CI/CD pipelines using automation and best practices, ensuring vulnerabilities are caught … early in the development cycle. Infrastructure as Code (IaC) Security: Secure the infrastructure by applying security measures to IaC tools such as Terraform and Ansible. Container Security: Ensure that containers (Docker, Kubernetes) are secured by configuring appropriate policies, scanning for vulnerabilities, and managing runtime security. Cloud Security: Design, implement, and manage security across Azure, focusing on identity management, data protection, and network security. Vulnerability Management: Identify and prioritize vulnerabilities across infrastructure and applications, and collaborate with teams to remediate them in a timely manner. Threat Modelling and Risk Assessment: Perform threat modelling to identify securityMore ❯
that we're able to interact and collaborate in person. About the Role As a Penetration Tester, you will be working with talented cyber security professionals to protect Starling customers, company assets, and systems using the latest technologies and techniques. The primary objective for this role is to collaborate … guide Starling's engineering and operation functions to ensure our services are designed, developed, and operated securely. As an experienced member of our penetration testing team, you will directly interact with multiple areas of the business to understand requirements, define the scope and approach to testing, and produce … reporting information aligned to our risk framework. Responsibilities Scoping and performing mobile, web application, cloud, and infrastructure penetration tests. Automation of securitytesting, and development of internal tooling, to achieve continuous assurance. Collaboration with engineering teams to facilitate secure development, including: Review and analysis of proposed technical solutions More ❯
Huntingdon, Cambridgeshire, United Kingdom Hybrid / WFH Options
慨正橡扯
Cyber Security Engineer (T4) Location: Huntingdon, Cambridgeshire Clearance Required: High level of security clearance ("DV - Developed Vetting") At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers' success. We empower our teams, contribute to our communities, and … Mission, Vision, and Values guide the way we do business. Are you ready for your next challenge? We are in search of multiple Cyber Security Engineers with varying technical backgrounds to work at our customer site in Huntingdon, Cambridgeshire, with occasional travel to other UK sites. In this role … you will work within a team of engineers to ensure that the customer sites maintain a strong cyber security posture. Cyber Security Engineers are responsible for providing cybersecurity engineering services for classified and unclassified networks of computer systems. The Cyber Security Engineers will provide operational and engineering More ❯
the world's most highly regulated firms, giving them greater visibility and control over their information and ensuring compliance with stringent regulations. The Software Security Analyst L1 is responsible for facilitating and conducting automated and manual securitytesting of Global Relay software. This position identifies, assesses, and … follows up on remediation activities associated with application vulnerabilities. Your responsibilities: Identify and document security vulnerabilities. Investigate security issues in order to determine specific steps for reproduction and scope. Create, maintain, and execute manual security test cases. Execute and analyze security scans using appropriate scanning tools … e.g. HP WebInspect). Provide reporting on the outcome of security testing. Document verification of security fixes. Develop competency in the OWASP Top 10 and derive new test methodologies based on Global Relay applications. Learn appropriate security tools (e.g. ZAP) that allow for manual and automated testing. More ❯
Colorado Springs, Colorado, United States Hybrid / WFH Options
Dark Wolf Solutions
Dark Wolf Solutions is actively seeking an experienced Product and Hardware Security Penetration Tester to join our innovative team. This individual will play a critical role in assessing and enhancing the security of various products, including hardware, software, and embedded systems. This role demands a deep understanding of … penetration testing methodologies and advanced exploit development, focusing on identifying and mitigating vulnerabilities across a wide range of technologies. As a Senior Product and Hardware Security Penetration Tester, you will have the chance to work on cutting-edge technologies and contribute to the enhancement of security across … a wide range of products. If you possess a strong background in penetration testing and a passion for cybersecurity, we encourage you to apply for this pivotal role. This position is set to be supported in a hybrid work environment out of Colorado Springs, CO. Key responsibilities include, but More ❯
Colorado Springs, Colorado, United States Hybrid / WFH Options
Dark Wolf Solutions
actively seeking an experienced Cloud Penetration Tester to join our innovative team. This individual will play a critical role in assessing and enhancing the security of various products, including hardware, software, and embedded systems. This role demands a deep understanding of penetration testing methodologies and advanced exploit development … focusing on identifying and mitigating vulnerabilities across a wide range of technologies. As a Senior Product and Hardware Security Penetration Tester, you will have the chance to work on cutting-edge technologies and contribute to the enhancement of security across a wide range of products. If you possess … a strong background in penetration testing and a passion for cybersecurity, we encourage you to apply for this pivotal role. This position is set to be supported in a hybrid work environment out of Colorado Springs, CO. Key responsibilities include, but are not limited to: Duties/Responsibilities: Conducting More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
慨正橡扯
A Senior Information Security Specialist, who will focus on the technical side of IT Security, specifically looking at application security and code analysis to ensure applications are built securely. The application security team deals with the security of closed source, open source, and in-house … that you possess an understanding of the Secure Software Development Lifecycles and the assessment of code. This role is part of the broader Information Security department, which is comprised of engineers and analysts with varying backgrounds. Collectively, the team utilises enterprise and bespoke tooling to identify and mitigate threats … in the Company's hybrid working from home policy. Preferred skills and experience Excellent understanding and demonstrable experience of automated, dynamic and static application securitytesting tools. Excellent understanding and experience with manual securitytesting to find vulnerabilities and logical issues. Knowledge and understanding of OWASP More ❯
meetings as needed. We are seeking a highly skilled Software Application Subject Matter Expert (SME) to lead the implementation of Department of Defense (DoD) Security Technical Implementation Guides (STIGs) for Oracle Development Kit applications. This role requires specialized knowledge in cybersecurity compliance, Oracle technologies, and secure software development practices. … providing expert-level knowledge and guidance on implementing DISA-ASD-STIG requirements for Oracle Development Kit applications. You will work closely with development teams, security professionals, and stakeholders to ensure all software meets DoD security compliance standards while maintaining functionality and performance. Responsibilities Apply subject matter expertise in … evaluating Oracle Development Kit applications against DoD STIG requirements and security standards Identify security vulnerabilities and recommend appropriate technical solutions to ensure STIG compliance Develop and implement security hardening procedures specific to Oracle Development Kit applications Provide guidance and mentorship to development teams on secure coding practices More ❯
Manchester Area, United Kingdom Hybrid / WFH Options
bet365
Who we are looking for A Senior Information Security Specialist, who will focus on the technical side of IT Security, specifically looking at application security and code analysis to ensure applications are built securely. The application security team deal with the security of closed source … that you possess an understanding of the Secure Software Development Lifecycles and the assessment of code. This role is part of the broader Information Security department, which is comprised of engineers and analysts with varying backgrounds. Collectively, the team utilises enterprise and bespoke tooling to identify and mitigate threats … in the Company’s hybrid working from home policy. Preferred skills and experience Excellent understanding and demonstrable experience of automated, dynamic and static application securitytesting tools. Excellent understanding and experience with manual securitytesting to find vulnerabilities and logical issues. Knowledge and understanding of OWASP More ❯
Stoke-On-Trent, England, United Kingdom Hybrid / WFH Options
bet365
Who we are looking for A Senior Information Security Specialist, who will focus on the technical side of IT Security, specifically looking at application security and code analysis to ensure applications are built securely. The application security team deal with the security of closed source … that you possess an understanding of the Secure Software Development Lifecycles and the assessment of code. This role is part of the broader Information Security department, which is comprised of engineers and analysts with varying backgrounds. Collectively, the team utilises enterprise and bespoke tooling to identify and mitigate threats … in the Company’s hybrid working from home policy. Preferred skills and experience Excellent understanding and demonstrable experience of automated, dynamic and static application securitytesting tools. Excellent understanding and experience with manual securitytesting to find vulnerabilities and logical issues. Knowledge and understanding of OWASP More ❯
A UK Government Security Check (SC) clearance is required for this role. If you don't hold SC clearance, we will support you to apply assuming you have lived and worked in the UK for a minimum of 5 years. Due to the nature of the project it is … also required you hold a British Citizenship or Dual Citizenship. As an Aker Lead Security Architect, you will be a recognised subject matter expert in security, risk management and compliance with demonstrable experience in highly regulated industries, specifically UK Government and/or Defence. You will build effective … working relationships with delivery team members and Aker customers and operate without supervision as a security lead across multiple projects and platforms, with extensive latitude for independent judgment to drive the required outcomes for Aker and its customers. You will: Lead client-specific security and assurance of highly More ❯
best in class expertise Encouraged and supported in developing crypto knowledge The Role An opportunity has arisen for an experienced SDET who will be testing the software platform for a new digital asset exchange; focused on an institutional client base. The ideal applicant will bring previous experience in testing scalable mission-critical financial systems, working with global teams, ensuring best testing practices, and staying within agreed project timelines. As the SDET, you must be hands-on and well-versed with the automation of API testing using WebSockets. You will also assist API QA teams based in … the PH location and help prioritize their automation backlog and make recommendations for testing tools, maintenance, and testing strategies, and assist with creating a maintainable application landscape alongside other QA Engineers, Development Leads, Developers, and Scrum Masters. Working for this employer as they experience continued growth you will More ❯
best in class expertise Encouraged and supported in developing crypto knowledge The Role An opportunity has arisen for an experienced SDET who will be testing the software platform for a new digital asset exchange; focused on an institutional client base. The ideal applicant will bring previous experience in testing scalable mission-critical financial systems, working with global teams, ensuring best testing practices, and staying within agreed project timelines. As the SDET, you must be hands-on and well-versed with the automation of API testing using WebSockets. You will also assist API QA teams based in … the PH location and help prioritize their automation backlog and make recommendations for testing tools, maintenance, and testing strategies, and assist with creating a maintainable application landscape alongside other QA Engineers, Development Leads, Developers, and Scrum Masters. Working for this employer as they experience continued growth you will More ❯
Job Title: Application Security Engineer Job Type: Permanent Location: UK or Europe (Remote) Salary: $150,000 - $180000 About the Role My client is seeking an Application Security Engineer to strengthen our security posture by identifying vulnerabilities, integrating best practices into CI/CD pipelines , and ensuring compliance … with PCI DSS, SOC 2, GDPR, and CCPA . You'll work closely with development teams to embed security into the Software Development Lifecycle (SDLC) from the ground up. If you're passionate about securing applications and solving complex security challenges, we want to hear from you! Key … Responsibilities Conduct security reviews and threat modeling during the application design phase. Perform static and dynamic application securitytesting (SAST/DAST) on internal and third-party applications. Define and maintain security standards for software development. Integrate security tools and processes into CI/CD More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
RSM UK
Birmingham, United Kingdom Principal Consultant - Cyber Security We are searching for an experienced Principal Consultant - Cyber Security. Make an Impact at RSM UK Consulting brings together multiple teams across Transactions, Risk & Consulting, ABA, and Outsourcing to provide client-centric solutions for RSM's current and future clients within the … service and identification of further work opportunities. The role will involve managing the delivery of agreed work activities with a primary focus on technical security including offensive security services. You'll benefit from ongoing coaching, career mentoring, and be supported by our career pathway. You will have an … to develop market-leading skills across our different capabilities and advance your professional development. You will make an impact by: Planning and delivering cyber security engagements, from scoping through to delivery, debriefs, and report writing. Contributing towards the development of exciting new market-facing offensive security cyber securityMore ❯
Principal Product Security Engineer Apply locations CZ - Prague UK - London time type Full time posted on Posted 6 Days Ago job requisition id JR103958 Our Product Security team is seeking a Principal Product Security Engineer to define and lead a secure development strategy and approach in a … fast-paced, agile development environment. You will be responsible for defining and driving security-related initiatives in collaboration with internal stakeholders. You will bring a wealth of technical expertise and industry experience spanning application security, cloud security, DevSecOps and CI/CD. The ideal candidate for this … has extensive industry experience with a strong technical background, is self-driven, with the ability to translate business objectives into technical requirements. Responsibilities: Drive security roadmap for SSDLC adoption across product portfolio, designing security practices in alignment with DevSecOps principles. Establish guidelines and architectural principles based on industry More ❯
Warwick, Warwickshire, United Kingdom Hybrid / WFH Options
ICEO
Information Security Officer About the role: We're seeking a seasoned Information Security Officer to drive our security strategy from the ground up. As the first dedicated security leader, you'll be at the forefront of protecting our systems, data, and users, ensuring we can scale … securely and remain fully compliant. You'll steer policy creation, oversee risk management, drive securitytesting, and collaborate company-wide to embed security in everything we do. About us: BeOne is a next-generation neobank that redefines how individuals and businesses manage money by blending traditional and … vision is to become the largest regulated funds and data transfer network for both retail and business customers. We empower users with financial freedom, security, and efficiency, whether for personal finances, business operations, or global investments. What you will do: Drive the company's information security strategy, ensuring More ❯
Job Title: Security Assurance Lead Salary: £53,300 - £71,300 Location: Cambridge/Hybrid with a minimum 2 days a week in the office Contract: Permanent, Full-time (35 hours per week) The Security Assurance Lead is crucial to staying ahead of emerging threats and ensuring our information … demands a professional who excels at identifying vulnerabilities and ensuring compliance with industry standards. If you have the expertise and drive to elevate our security, we are eager to welcome you to our team. We are Cambridge University Press & Assessment, a world-leading academic publisher and assessment organisation and … a proud part of the University of Cambridge. About the role The Security Assurance Lead plays a key role in safeguarding Cambridge University Press & Assessment's information assets and ensuring compliance with industry standards, regulations, and best practices. This role involves leading security assurance initiatives, conducting risk assessments More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
BAE Systems (New)
Location(s): UK, Europe & Africa : UK : Guildford Job Title: Information Security Classified Networks Technical Assurance Lead Location: Guildford, with some option for hybrid working. We offer a range of hybrid and flexible working arrangements - please speak to your recruiter about the options for this particular role. What you'll … work, interfacing with the IT team, Accreditor, and affected business units. Maintain compliance with frameworks such as Secure by Design, NIST-800-53, STRAP. SecurityTesting - Scope and oversee penetration testing, vulnerability scanning, and other security validation activities to ensure effectiveness of security controls. Design … and Architecture Review - Assess the Information Security of IT architecture and system designs during project lifecycles, providing recommendations for secure design principles. Policy and Standards - Develop and enforce technical security policy, procedures, standards, and guidance to ensure effective implementation across projects and teams. Continuous Improvement - Identify gaps in More ❯
Southampton, Hampshire, South East, United Kingdom Hybrid / WFH Options
LA International Computer Consultants Ltd
An SC cleared Network Test Manager is required to work with our customer to scope testing requirements for the primary network and manage the tests with the TDAs, service, security, and test assurance teams. Tis is a hybrid role with 2 days on site in Southampton and is … inside IR35 so will require working via an FCSA umbrella company. The main testing areas that need to be scoped and managed are: *SecurityTesting - Review the vulnerability of the network, and review configuration of sample devices against CIS Benchmarks and NATS security policies *Penetration Testing … test lead to support the scoping, execution and managing of remediations. This will be a separate resource to the overall Test Lead *Network Failover Testing - Tests will be based on failure modes as identified in the FMEA (Failure Modes and Effects Analysis) documents for the primary network *Performance TestingMore ❯